| Manumaschine |  28.05.2011 09:43 |        OSAM Logfile:   Code:  
 Report of OSAM: Autorun Manager v5.0.11926.0 
hxxp://www.online-solutions.ru/en/ 
Saved at 10:42:39 on 28.05.2011   
OS: Windows XP Home Edition Service Pack 3 (Build 2600) 
Default Browser: Mozilla Corporation Firefox 3.6.13   
Scanner Settings 
[x] Rootkits detection (hidden registry) 
[x] Rootkits detection (hidden files) 
[x] Retrieve files information 
[x] Check Microsoft signatures   
Filters 
[ ] Trusted entries 
[ ] Empty entries 
[x] Hidden registry entries (rootkit activity) 
[x] Exclusively opened files 
[x] Not found files 
[x] Files without detailed information 
[x] Existing files 
[ ] Non-startable services 
[ ] Non-startable drivers 
[x] Active entries 
[x] Disabled entries     
[Common] 
-----( %SystemRoot%\Tasks )----- 
"RealUpgradeLogonTaskS-1-5-21-823518204-1390067357-725345543-1005.job" - "RealNetworks, Inc." - C:\Programme\Real\RealUpgrade\realupgrade.exe 
"RealUpgradeLogonTaskS-1-5-21-823518204-1390067357-725345543-1009.job" - "RealNetworks, Inc." - C:\Programme\Real\RealUpgrade\realupgrade.exe 
"RealUpgradeLogonTaskS-1-5-21-823518204-1390067357-725345543-1010.job" - "RealNetworks, Inc." - C:\Programme\Real\RealUpgrade\realupgrade.exe 
"RealUpgradeLogonTaskS-1-5-21-823518204-1390067357-725345543-1011.job" - "RealNetworks, Inc." - C:\Programme\Real\RealUpgrade\realupgrade.exe 
"RealUpgradeScheduledTaskS-1-5-21-823518204-1390067357-725345543-1005.job" - "RealNetworks, Inc." - C:\Programme\Real\RealUpgrade\realupgrade.exe 
"RealUpgradeScheduledTaskS-1-5-21-823518204-1390067357-725345543-1009.job" - "RealNetworks, Inc." - C:\Programme\Real\RealUpgrade\realupgrade.exe 
"RealUpgradeScheduledTaskS-1-5-21-823518204-1390067357-725345543-1010.job" - "RealNetworks, Inc." - C:\Programme\Real\RealUpgrade\realupgrade.exe 
"RealUpgradeScheduledTaskS-1-5-21-823518204-1390067357-725345543-1011.job" - "RealNetworks, Inc." - C:\Programme\Real\RealUpgrade\realupgrade.exe   
[Control Panel Objects] 
-----( %SystemRoot%\system32 )----- 
"ALSNDMGR.CPL" - "Realtek Semiconductor Corp." - C:\WINDOWS\system32\ALSNDMGR.CPL 
"FlashPlayerCPLApp.cpl" - "Adobe Systems Incorporated" - C:\WINDOWS\system32\FlashPlayerCPLApp.cpl 
"infocardcpl.cpl" - "Microsoft Corporation" - C:\WINDOWS\system32\infocardcpl.cpl 
"javacpl.cpl" - "Sun Microsystems, Inc." - C:\WINDOWS\system32\javacpl.cpl 
"RTSndMgr.CPL" - "Realtek Semiconductor Corp." - C:\WINDOWS\system32\RTSndMgr.CPL 
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Control Panel\Cpls )----- 
"Avira AntiVir Personal - Free Antivirus " - "Avira GmbH" - C:\PROGRA~1\Avira\ANTIVI~1\avconfig.cpl 
"Avira AntiVir PersonalEdition Classic" - ? - C:\PROGRA~1\ANTIVI~1\avconfig.cpl  (File not found) 
"lgLcdCpl" - "Logitech Inc." - C:\Programme\Logitech\G-series Software\LgLcdCpl.cpl 
"QuickTime" - "Apple Inc." - C:\Programme\QuickTime\QTSystem\QuickTime.cpl   
[Drivers] 
-----( HKLM\SYSTEM\CurrentControlSet\Services )----- 
"avgio" (avgio) - "Avira GmbH" - C:\Programme\Avira\AntiVir Desktop\avgio.sys 
"avgntflt" (avgntflt) - "Avira GmbH" - C:\WINDOWS\System32\DRIVERS\avgntflt.sys 
"avipbb" (avipbb) - "Avira GmbH" - C:\WINDOWS\System32\DRIVERS\avipbb.sys 
"catchme" (catchme) - ? - C:\cofi\catchme.sys  (File not found) 
"Changer" (Changer) - ? - C:\WINDOWS\system32\drivers\Changer.sys  (File not found) 
"i2omgmt" (i2omgmt) - ? - C:\WINDOWS\system32\drivers\i2omgmt.sys  (File not found) 
"lbrtfdc" (lbrtfdc) - ? - C:\WINDOWS\system32\drivers\lbrtfdc.sys  (File not found) 
"Logitech SetPoint HID Mouse Filter Driver" (LHidKe) - "Logitech, Inc." - C:\WINDOWS\System32\DRIVERS\LHidKE.Sys 
"Logitech SetPoint Mouse Filter Driver" (LMouKE) - "Logitech, Inc." - C:\WINDOWS\System32\DRIVERS\LMouKE.Sys 
"Logitech SetPoint USB Receiver device driver" (LHidUsbK) - "Logitech, Inc." - C:\WINDOWS\System32\Drivers\LHidUsbK.Sys 
"Nokia USB Flashing Generic" (nmwcdnsuc) - ? - C:\WINDOWS\System32\drivers\nmwcdnsuc.sys  (File not found) 
"Nokia USB Flashing Phone Parent" (nmwcdnsu) - ? - C:\WINDOWS\System32\drivers\nmwcdnsu.sys  (File not found) 
"Nokia USB Generic" (nmwcdc) - ? - C:\WINDOWS\System32\drivers\ccdcmbo.sys  (File not found) 
"Nokia USB Phone Parent" (nmwcd) - ? - C:\WINDOWS\System32\drivers\ccdcmb.sys  (File not found) 
"PCIDump" (PCIDump) - ? - C:\WINDOWS\system32\drivers\PCIDump.sys  (File not found) 
"PDCOMP" (PDCOMP) - ? - C:\WINDOWS\system32\drivers\PDCOMP.sys  (File not found) 
"PDFRAME" (PDFRAME) - ? - C:\WINDOWS\system32\drivers\PDFRAME.sys  (File not found) 
"PDRELI" (PDRELI) - ? - C:\WINDOWS\system32\drivers\PDRELI.sys  (File not found) 
"PDRFRAME" (PDRFRAME) - ? - C:\WINDOWS\system32\drivers\PDRFRAME.sys  (File not found) 
"PxHelp20" (PxHelp20) - "Sonic Solutions" - C:\WINDOWS\System32\Drivers\PxHelp20.sys 
"Realtek 10/100/1000 NIC Family all in one NDIS XP Driver" (RTL8023xp) - "Realtek Semiconductor Corporation                           " - C:\WINDOWS\System32\DRIVERS\Rtlnicxp.sys 
"Service for Realtek HD Audio (WDM)" (IntcAzAudAddService) - "Realtek Semiconductor Corp." - C:\WINDOWS\System32\drivers\RtkHDAud.sys 
"ssmdrv" (ssmdrv) - "Avira GmbH" - C:\WINDOWS\System32\DRIVERS\ssmdrv.sys 
"upperdev" (upperdev) - ? - C:\WINDOWS\System32\DRIVERS\usbser_lowerflt.sys  (File not found) 
"UsbserFilt" (UsbserFilt) - ? - C:\WINDOWS\System32\DRIVERS\usbser_lowerfltj.sys  (File not found) 
"WDICA" (WDICA) - ? - C:\WINDOWS\system32\drivers\WDICA.sys  (File not found)   
[Explorer] 
-----( HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components )----- 
{89B4C1CD-B018-4511-B0A1-5476DBF70820} "StubPath" - "Microsoft Corporation" - c:\WINDOWS\system32\Rundll32.exe c:\WINDOWS\system32\mscories.dll,Install 
<{12d0ed0d-0ee0-4f90-8827-78cefb8f4988} "Versions-Update für Internet Explorer" - "Microsoft Corporation" - C:\WINDOWS\system32\ieudinit.exe 
-----( HKLM\Software\Classes\Folder\shellex\ColumnHandlers )----- 
{F9DB5320-233E-11D1-9F84-707F02C10627} "PDF Shell Extension" - "Adobe Systems, Inc." - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\PDFShell.dll 
-----( HKLM\Software\Classes\Protocols\Filter )----- 
{1E66F26B-79EE-11D2-8710-00C04F79ED0D} "Cor MIME Filter, CorFltr, CorFltr 1" - "Microsoft Corporation" - C:\WINDOWS\system32\mscoree.dll 
{1E66F26B-79EE-11D2-8710-00C04F79ED0D} "Cor MIME Filter, CorFltr, CorFltr 1" - "Microsoft Corporation" - C:\WINDOWS\system32\mscoree.dll 
{1E66F26B-79EE-11D2-8710-00C04F79ED0D} "Cor MIME Filter, CorFltr, CorFltr 1" - "Microsoft Corporation" - C:\WINDOWS\system32\mscoree.dll 
{807563E5-5146-11D5-A672-00B0D022E945} "Microsoft Office InfoPath XML Mime Filter" - "Microsoft Corporation" - C:\PROGRA~1\GEMEIN~1\MICROS~1\OFFICE12\MSOXMLMF.DLL 
-----( HKLM\Software\Classes\Protocols\Handler )----- 
{9462A756-7B47-47BC-8C80-C34B9B80B32B} "BackWeb GA Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79bbd618-79c1-411f-b912-d59d1e577aa0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{79BBD618-79C1-411F-B912-D59D1E577AA0} "BackWeb Proactive Portal Pluggable Protocol" - "BackWeb Technologies Inc.                         " - C:\Programme\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll 
{314111c7-a502-11d2-bbca-00c04f8ec294} "HxProtocol Class" - "Microsoft Corporation" - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Help\hxds.dll 
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved )----- 
{42071714-76d4-11d1-8b24-00a0c9068ff3} "CPL-Erweiterung für Anzeigeverschiebung" - ? - deskpan.dll  (File not found) 
{1D2680C9-0E2A-469d-B787-065558BC7D43} "Fusion Cache" - "Microsoft Corporation" - c:\WINDOWS\system32\mscoree.dll 
{FAC3CBF6-8697-43d0-BAB9-DCD1FCE19D75} "IE User Assist" - ? -   (File not found | COM-object registry key not found) 
{853FE2B1-B769-11d0-9C4E-00C04FB6C6FA} "Kontextmenü für die Verschlüsselung" - ? -   (File not found | COM-object registry key not found) 
{BC476F4C-D9D7-4100-8D4E-E043F6DEC409} "Microsoft Browser Architecture" - ? -   (File not found | COM-object registry key not found) 
{42042206-2D85-11D3-8CFF-005004838597} "Microsoft Office HTML Icon Handler" - "Microsoft Corporation" - C:\Programme\Microsoft Office\Office12\msohevi.dll 
{993BE281-6695-4BA5-8A2A-7AACBFAAB69E} "Microsoft Office Metadata Handler" - "Microsoft Corporation" - C:\PROGRA~1\GEMEIN~1\MICROS~1\OFFICE12\msoshext.dll 
{5858A72C-C2B4-4dd7-B2BF-B76DB1BD9F6C} "Microsoft Office OneNote Namespace Extension for Windows Desktop Search" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~2\Office12\ONFILTER.DLL 
{C41662BB-1FA0-4CE0-8DC5-9B7F8279FF97} "Microsoft Office Thumbnail Handler" - "Microsoft Corporation" - C:\PROGRA~1\GEMEIN~1\MICROS~1\OFFICE12\msoshext.dll 
{F0CB00CD-5A07-4D91-97F5-A8C92CDA93E4} "RealOne Player Context Menu Class" - "RealNetworks, Inc." - c:\programme\real\realplayer\rpshell.dll 
{45AC2688-0253-4ED8-97DE-B5370FA7D48A} "Shell Extension for Malware scanning" - "Avira GmbH" - C:\Programme\Avira\AntiVir Desktop\shlext.dll 
{E37E2028-CE1A-4f42-AF05-6CEABC4E5D75} "Shell Icon Handler for Application References" - "Microsoft Corporation" - c:\WINDOWS\system32\dfshim.dll 
{764BF0E1-F219-11ce-972D-00AA00A14F56} "Shellerweiterungen für die Dateikomprimierung" - ? -   (File not found | COM-object registry key not found) 
{e82a2d71-5b2f-43a0-97b8-81be15854de8} "ShellLink for Application References" - "Microsoft Corporation" - c:\WINDOWS\system32\dfshim.dll 
{5E2121EE-0300-11D4-8D3B-444553540000} "SimpleShlExt Class" - "Advanced Micro Devices, Inc." - C:\Programme\ATI Technologies\ATI.ACE\Core-Static\atiacmxx.dll 
{BDEADF00-C265-11D0-BCED-00A0C90AB50F} "Web Folders" - "Microsoft Corporation" - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Web Folders\MSONSEXT.DLL 
{B41DB860-8EE4-11D2-9906-E49FADC173CA} "WinRAR" - ? - C:\Programme\WinRAR\rarext.dll  (File found, but it contains no detailed information)   
[Internet Explorer] 
-----( HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser )----- 
ITBar7Height "ITBar7Height" - ? -   (File not found | COM-object registry key not found) 
<binary data> "ITBar7Layout" - ? -   (File not found | COM-object registry key not found) 
<binary data> "ITBarLayout" - ? -   (File not found | COM-object registry key not found) 
-----( HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units )----- 
{8AD9C840-044E-11D1-B3E9-00805F499D93} "Java Plug-in 1.6.0_24" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\npjpi160_24.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab 
{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} "Java Plug-in 1.6.0_24" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\npjpi160_24.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab 
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} "Java Plug-in 1.6.0_24" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\npjpi160_24.dll / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab 
{D0C0F75C-683A-4390-A791-1ACFD5599AB8} "Oberon Flash Game Host" - "Oberon Media, Inc." - C:\WINDOWS\Downloaded Program Files\OberonGameHost.dll / hxxp://icq.oberon-media.com/Gameshell/GameHost/1.0/OberonGameHost.cab 
{CAFEEFAC-0015-0000-0000-ABCDEFFEDCBA} "{CAFEEFAC-0015-0000-0000-ABCDEFFEDCBA}" - ? -   (File not found | COM-object registry key not found) / hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0-windows-i586.cab 
{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA} "{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA}" - ? -   (File not found | COM-object registry key not found) / hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_09-windows-i586.cab 
{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} "{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA}" - ? -   (File not found | COM-object registry key not found) / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_01-windows-i586.cab 
{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} "{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}" - ? -   (File not found | COM-object registry key not found) / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab 
{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} "{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}" - ? -   (File not found | COM-object registry key not found) / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab 
{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} "{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}" - ? -   (File not found | COM-object registry key not found) / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab 
{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} "{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}" - ? -   (File not found | COM-object registry key not found) / hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab 
-----( HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions )----- 
{48E73304-E1D6-4330-914C-F5F514E3486C} "An OneNote senden" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll 
"ICQ7.5" - "ICQ, LLC." - C:\Programme\ICQ7.5\ICQ.exe 
"PokerStars" - "PokerStars" - C:\Programme\PokerStars\PokerStarsUpdate.exe 
{FF059E31-CC5A-4E2E-BF3B-96E929D65503} "Research" - "Microsoft Corporation" - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL 
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects )----- 
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} "Adobe PDF Reader" - "Adobe Systems Incorporated" - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\AcroIEHelper.dll 
{DBC80044-A445-435b-BC74-9C25C1C588A9} "Java(tm) Plug-In 2 SSV Helper" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\jp2ssv.dll 
{E7E6F031-17CE-4C07-BC86-EABFE594F69C} "JQSIEStartDetectorImpl Class" - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll   
[Logon] 
-----( %UserProfile%\Startmenü\Programme\Autostart )----- 
"desktop.ini" - ? - C:\Dokumente und Einstellungen\Manu\Startmenü\Programme\Autostart\desktop.ini 
-----( HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run )----- 
"LDM" - "Logitech" - C:\Programme\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe 
-----( HKLM\Software\Microsoft\Windows\CurrentVersion\Run )----- 
"AlcWzrd" - "RealTek Semicoductor Corp." - ALCWZRD.EXE 
"avgnt" - "Avira GmbH" - "C:\Programme\Avira\AntiVir Desktop\avgnt.exe" /min 
"C-Media Echo Control" - ? - C:\Programme\PCI Audio Applications\Bin\EchoCtrl.exe 
"Launch LCDMon" - "Logitech Inc." - "C:\Programme\Logitech\G-series Software\LCDMon.exe" 
"Launch LGDCore" - "Logitech Inc." - "C:\Programme\Logitech\G-series Software\LGDCore.exe" /SHOWHIDE 
"Logitech Hardware Abstraction Layer" - "Logitech Inc." - KHALMNPR.EXE 
"NeroFilterCheck" - "Ahead Software Gmbh" - C:\WINDOWS\system32\NeroCheck.exe 
"QuickTime Task" - "Apple Inc." - "C:\Programme\QuickTime\qttask.exe" -atboottime 
"SoundMan" - "Realtek Semiconductor Corp." - SOUNDMAN.EXE 
"StartCCC" - "Advanced Micro Devices, Inc." - "C:\Programme\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun 
"SunJavaUpdateSched" - "Sun Microsystems, Inc." - "C:\Programme\Gemeinsame Dateien\Java\Java Update\jusched.exe" 
"TkBellExe" - "RealNetworks, Inc." - "C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe"  -osboot   
[Print Monitors] 
-----( HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors )----- 
"Canon BJ Language Monitor MP150" - "CANON INC." - C:\WINDOWS\system32\CNMLM7K.DLL 
"Send To Microsoft OneNote Monitor" - "Microsoft Corporation" - C:\WINDOWS\system32\msonpmon.dll   
[Services] 
-----( HKLM\SYSTEM\CurrentControlSet\Services )----- 
".NET Runtime Optimization Service v2.0.50727_X86" (clr_optimization_v2.0.50727_32) - "Microsoft Corporation" - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 
"Anwendungsverwaltung" (AppMgmt) - ? - C:\WINDOWS\System32\appmgmts.dll  (File not found) 
"ASP.NET State Service" (aspnet_state) - "Microsoft Corporation" - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe 
"ATI Smart" (ATI Smart) - ? - C:\WINDOWS\system32\ati2sgag.exe 
"Avira AntiVir Guard" (AntiVirService) - "Avira GmbH" - C:\Programme\Avira\AntiVir Desktop\avguard.exe 
"Avira AntiVir Planer" (AntiVirSchedulerService) - "Avira GmbH" - C:\Programme\Avira\AntiVir Desktop\sched.exe 
"Java Quick Starter" (JavaQuickStarterService) - "Sun Microsystems, Inc." - C:\Programme\Java\jre6\bin\jqs.exe 
"Microsoft Office Diagnostics Service" (odserv) - "Microsoft Corporation" - C:\Programme\Gemeinsame Dateien\Microsoft Shared\OFFICE12\ODSERV.EXE 
"Office Source Engine" (ose) - "Microsoft Corporation" - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Source Engine\OSE.EXE 
"PnkBstrA" (PnkBstrA) - ? - C:\WINDOWS\system32\PnkBstrA.exe  (File found, but it contains no detailed information) 
"PostgreSQL Database Server 8.3" (pgsql-8.3) - "PostgreSQL Global Development Group" - C:\Programme\PostgreSQL\8.3\bin\pg_ctl.exe 
"ServiceLayer" (ServiceLayer) - "Nokia" - C:\Programme\PC Connectivity Solution\ServiceLayer.exe 
"Windows CardSpace" (idsvc) - "Microsoft Corporation" - C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe 
"Windows Presentation Foundation Font Cache 3.0.0.0" (FontCache3.0.0.0) - "Microsoft Corporation" - C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe   
[Winlogon] 
-----( HKCU\Control Panel\IOProcs )----- 
"MVB" - ? - mvfs32.dll  (File not found) 
-----( HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions )----- 
{c6dc5466-785a-11d2-84d0-00c04fb169f7} "Softwareinstallation" - ? - appmgmts.dll  (File not found)   
===[ Logfile end ]=========================================[ Logfile end ]===   --- --- ---  
If You have questions or want to get some help, You can visit hxxp://forum.online-solutions.ru    |